PORTALE DELLA DIDATTICA

PORTALE DELLA DIDATTICA

PORTALE DELLA DIDATTICA

Elenco notifiche



Computer system security

02KRQOV, 02KRQBG

A.A. 2019/20

Course Language

Inglese

Degree programme(s)

Master of science-level of the Bologna process in Ingegneria Informatica (Computer Engineering) - Torino
Master of science-level of the Bologna process in Communications And Computer Networks Engineering (Ingegneria Telematica E Delle Comunicazioni) - Torino

Course structure
Teaching Hours
Lezioni 40
Esercitazioni in aula 5
Esercitazioni in laboratorio 15
Lecturers
Teacher Status SSD h.Les h.Ex h.Lab h.Tut Years teaching
Lioy Antonio Professore Ordinario IINF-05/A 8 0 0 0 16
Co-lectures
Espandi

Context
SSD CFU Activities Area context
ING-INF/05 6 C - Affini o integrative Attivitą formative affini o integrative
2019/20
This course deals with security issues in modern networked computer systems, paying special attention to data security and protection of computer networks and networked computer applications, in a closed (Intranet) or open (Internet) environment. The course aims to teach the skills needed to perform both the analysis and design of the security features of a networked computer system.
This course deals with security issues in modern networked computer systems, paying special attention to data security and protection of computer networks and networked computer applications, in a closed (Intranet) or open (Internet) environment. The course aims to teach the skills needed to perform both the analysis and design of the security features of a networked computer system.
- Knowledge of the main categories of attack against networked computer systems - Knowledge and critical evaluation of the main methodologies (encryption and digest) and technologies (PKI, firewall, VPN, TLS, S/MIME, e-documents) for computer and information security - Knowledge and critical evaluation of the security architectures for authentication and access control and ability to tailor them to the protection of networked computer systems - Ability to analyse the risks of a network application and design a solution for its protection
- Knowledge of the main categories of attack against networked computer systems - Knowledge and critical evaluation of the main methodologies (encryption and digest) and technologies (PKI, firewall, VPN, TLS, S/MIME, e-documents) for computer and information security - Knowledge and critical evaluation of the security architectures for authentication and access control and ability to tailor them to the protection of networked computer systems - Ability to analyse the risks of a network application and design a solution for its protection
Ethernet local networks. Wireless networks. TCP/IP networks and applications. High-level programming (in C, C++, or Java). Operating Systems.
Ethernet local networks. Wireless networks. TCP/IP networks and applications. High-level programming (in C, C++, or Java). Operating Systems.
- (1 CFU) Computer systems (in)security: problems and attacks (sniffing, spoofing, DOS, '). - (1 CFU) Basic protection techniques: steganography, cryptography, digest, X.509 certificates, certification authorities (CA) and public-key infrastructures (PKI). - (1 CFU) Authentication techniques (password, challenges, Kerberos) and related hardware devices (token and smart-card). - (1 CFU) Network security: the IPsec standard to protect IP networks; security of the network configuration and management protocols; firewall and IDS to create protected subnets; virtual private networks (VPN); security of wireless networks. - (1 CFU) Application security: e-mail protection (PGP, S/MIME), web security (SSL, TLS) and remote access protection (SSH, TLS), securing web applications. - (1 CFU) Secure document workflow and e-commerce; national and international legislation about e documents; digital signature and e documents; the SET protocol and other e-payment systems.
- (1 CFU) Computer systems (in)security: problems and attacks (sniffing, spoofing, DOS, '). - (1 CFU) Basic protection techniques: steganography, cryptography, digest, X.509 certificates, certification authorities (CA) and public-key infrastructures (PKI). - (1 CFU) Authentication techniques (password, challenges, Kerberos) and related hardware devices (token and smart-card). - (1 CFU) Network security: the IPsec standard to protect IP networks; security of the network configuration and management protocols; firewall and IDS to create protected subnets; virtual private networks (VPN); security of wireless networks. - (1 CFU) Application security: e-mail protection (PGP, S/MIME), web security (SSL, TLS) and remote access protection (SSH, TLS), securing web applications. - (1 CFU) Secure document workflow and e-commerce; national and international legislation about e documents; digital signature and e documents; the SET protocol and other e-payment systems.
The laboratory includes the development and analysis of several security solutions. There will be 5 different labs. The classroom exercises will analyse some security solutions, including those developed in the labs.
The laboratory includes the development and analysis of several security solutions. There will be 5 different labs. The classroom exercises will analyse some security solutions, including those developed in the labs.
The lessons' handouts and laboratory manuals are available from the instructor's web site. An auxiliary textbook, covering many but not all the topics, is: - W. Stallings, 'Cryptography and Network Security - principles and practice', Prentice-Hall
The lessons' handouts and laboratory manuals are available from the instructor's web site. An auxiliary textbook, covering many but not all the topics, is: - W. Stallings, 'Cryptography and Network Security - principles and practice', Prentice-Hall
Modalitą di esame: Prova scritta (in aula); Elaborato scritto individuale;
Exam: Written test; Individual essay;
... Written exam (2 hours) about the analysis and design of security solutions. Alternatively, the student can develop an individual homework about one of the course's topics.
Gli studenti e le studentesse con disabilitą o con Disturbi Specifici di Apprendimento (DSA), oltre alla segnalazione tramite procedura informatizzata, sono invitati a comunicare anche direttamente al/la docente titolare dell'insegnamento, con un preavviso non inferiore ad una settimana dall'avvio della sessione d'esame, gli strumenti compensativi concordati con l'Unitą Special Needs, al fine di permettere al/la docente la declinazione pił idonea in riferimento alla specifica tipologia di esame.
Exam: Written test; Individual essay;
Written exam (2 hours) about the analysis and design of security solutions. Alternatively, the student can develop an individual homework about one of the course's topics.
In addition to the message sent by the online system, students with disabilities or Specific Learning Disorders (SLD) are invited to directly inform the professor in charge of the course about the special arrangements for the exam that have been agreed with the Special Needs Unit. The professor has to be informed at least one week before the beginning of the examination session in order to provide students with the most suitable arrangements for each specific type of exam.
Esporta Word